This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

All http traffic blocked + unable to update firmware or paterns

Hello,

 

I have a problem on a XG135 of a custommer. I wanted to upate it on V17 MR8 from MR6 this week end, and I scheduled it from my SFM. I scheduled 10 firewalls and only this xg135 failed.
So I connected on GUI and tried a manual update but still didnt want to check for update with the message "Check for new firmware failed" and in the logs I could see the event 18029

Up2Date
Failed
 
Failed to check for updates

Then I manually downloaded and uploaded the firmware on the XG but while applying it the firewall didnt reboot on his own, I had to reboot it manually in order to boot on the right version.

I didn't investigate why the firewall didn't want to check for firmware, but this morning all the users were having issues browsing internet on HTTP sites with a message from the Sophos blocking the site due to security risks. And in the "more details" link we could see that the site is blocked because the malware scan was not successful. I tested by replacing http:// by https:// before the urls and it worked.


So I unchecked the "SCAN HTTP" option in my LAN>WAN rules and the HTTP sites can now be browsed correctly. This scan http option is turned ON since the beginning and all the configuration is the same on the 10 others Sophos Firewall I'm managing for my other custommers and I have no problem with this option. (I only scan HTTP traffic, not HTTPS, so it's not a problem with certificate).

Then I went under "pattern updates" to check the version of the AVIRA AV and SOPHOS AV, and saw that they were not up to date, so I clicked on "update Pattern now" but it didn't want to update too like the firmware with this message: "Failed to check for pattern updates".

So I really have a problem on this Firewall I guess... All the traffic in the logs is now tagged as virus but the same websites are OK from my office with a XG105...

 

I openned a case #8165502 and I'm now trying to call the Sophos Support France and I'm waiting for 45 min but still holding the line with a music...

 

Thank you for your help.



This thread was automatically locked due to age.
Parents Reply
  • Hello Aditya,

     

    The scan is already set to single Engine with the Sophos Engine (by the way, changing the engine from Sophos to Avira make the issue disappear for the http traffic tagged as virus, but it doesn't correct the firmware update or patternes update issue.)

     

     

    Ok I will try to install the newer firmware 17.1GA this week end and will let you know.

Children
No Data